<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic pix515 multiple interface configuration in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/pix515-multiple-interface-configuration/m-p/683977#M1054617</link>
    <description>&lt;P&gt;Hi, actually i have this scenario:pix 515e version 6.2(2) with on board&lt;/P&gt;&lt;P&gt;6 interfaces but now configure with 3 interfaces (in this mode):&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;INTERNET ROUTER (ETH 172.17.10.1)&lt;/P&gt;&lt;P&gt;       I&lt;/P&gt;&lt;P&gt;       I&lt;/P&gt;&lt;P&gt;       I&lt;/P&gt;&lt;P&gt;       I(OUTSIDE - 172.17.10.2)&lt;/P&gt;&lt;P&gt;    PIX -INTF2--.2--------------(172.17.12.0/29)--------.3(PARTNER)&lt;/P&gt;&lt;P&gt;    INSIDE (172.17.8.1/23)&lt;/P&gt;&lt;P&gt;      I&lt;/P&gt;&lt;P&gt;      I&lt;/P&gt;&lt;P&gt;      I&lt;/P&gt;&lt;P&gt;      I&lt;/P&gt;&lt;P&gt;MY LAN&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;then 3 interfaces configuration without NAT.&lt;/P&gt;&lt;P&gt;there are the static routes:&lt;/P&gt;&lt;P&gt;route outside 0.0.0.0 0.0.0.0 172.17.10.1 1 route intf2 192.168.54.209 255.255.255.255 172.17.12.3 1 route intf2 192.168.129.0 255.255.255.0 172.17.12.3 1 route intf2 192.168.131.0 255.255.255.0 172.17.12.3 1 route intf2 192.168.134.0 255.255.255.0 172.17.12.3 1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;traffic outcomes from my default gateway coming out from 172.17.10.1, traffic out/in from /to network 192.168.x.x/16 is forwarded from intf2 this scenario works well.&lt;/P&gt;&lt;P&gt;but tomorrow i must add  new two routers on  2 new interfaces and i would have this new scenario:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; ISP ROUTER (.3 )  ISP ROUTER (.1)&lt;/P&gt;&lt;P&gt;                      \     I&lt;/P&gt;&lt;P&gt;        172.17.14.0/30 \    I    172.17.10.0/30&lt;/P&gt;&lt;P&gt;                        \   I&lt;/P&gt;&lt;P&gt;             INTF3(.2) \  I(OUTSIDE - .2)&lt;/P&gt;&lt;P&gt;(PARTNER)(.3)(172.17.13.0/29)INTF5(.2)PIX-INTF2(.2)(172.17.12.0/29)(.3)(PARTNER)&lt;/P&gt;&lt;P&gt;                     INSIDE (172.17.8.1/23)&lt;/P&gt;&lt;P&gt;                          I&lt;/P&gt;&lt;P&gt;                          I&lt;/P&gt;&lt;P&gt;                          I&lt;/P&gt;&lt;P&gt;                          I&lt;/P&gt;&lt;P&gt;                          I&lt;/P&gt;&lt;P&gt;                       MY LAN&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and this would have to be future situation:&lt;/P&gt;&lt;P&gt;the traffic that outcomes from 172.17.8.1/25 coming out from&lt;/P&gt;&lt;P&gt;172.17.10.1&lt;/P&gt;&lt;P&gt;the traffic that outcomes from 172.17.8.128/25 coming out from a new interface 172.17.14.3 except traffic out/in from 192.168.0.0/16 coming out from 172.17.12.3 traffic that outcomes from 172.17.9.1/25 coming out from interface&lt;/P&gt;&lt;P&gt;172.17.14.3 except traffic out/in 192.168.0.0/16 coming out from&lt;/P&gt;&lt;P&gt;172.17.13.3&lt;/P&gt;&lt;P&gt;traffic outcomes from 172.17.9.128/25 coming out from 172.17.10.1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;is it possible this scenario?&lt;/P&gt;&lt;P&gt;can you help me with this configuration?obbligatory i use NAT?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;sorry for my bad english...&lt;/P&gt;&lt;P&gt;thanks in advance&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Matt&lt;/P&gt;</description>
    <pubDate>Fri, 21 Feb 2020 09:19:01 GMT</pubDate>
    <dc:creator>teteja1974</dc:creator>
    <dc:date>2020-02-21T09:19:01Z</dc:date>
    <item>
      <title>pix515 multiple interface configuration</title>
      <link>https://community.cisco.com/t5/network-security/pix515-multiple-interface-configuration/m-p/683977#M1054617</link>
      <description>&lt;P&gt;Hi, actually i have this scenario:pix 515e version 6.2(2) with on board&lt;/P&gt;&lt;P&gt;6 interfaces but now configure with 3 interfaces (in this mode):&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;INTERNET ROUTER (ETH 172.17.10.1)&lt;/P&gt;&lt;P&gt;       I&lt;/P&gt;&lt;P&gt;       I&lt;/P&gt;&lt;P&gt;       I&lt;/P&gt;&lt;P&gt;       I(OUTSIDE - 172.17.10.2)&lt;/P&gt;&lt;P&gt;    PIX -INTF2--.2--------------(172.17.12.0/29)--------.3(PARTNER)&lt;/P&gt;&lt;P&gt;    INSIDE (172.17.8.1/23)&lt;/P&gt;&lt;P&gt;      I&lt;/P&gt;&lt;P&gt;      I&lt;/P&gt;&lt;P&gt;      I&lt;/P&gt;&lt;P&gt;      I&lt;/P&gt;&lt;P&gt;MY LAN&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;then 3 interfaces configuration without NAT.&lt;/P&gt;&lt;P&gt;there are the static routes:&lt;/P&gt;&lt;P&gt;route outside 0.0.0.0 0.0.0.0 172.17.10.1 1 route intf2 192.168.54.209 255.255.255.255 172.17.12.3 1 route intf2 192.168.129.0 255.255.255.0 172.17.12.3 1 route intf2 192.168.131.0 255.255.255.0 172.17.12.3 1 route intf2 192.168.134.0 255.255.255.0 172.17.12.3 1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;traffic outcomes from my default gateway coming out from 172.17.10.1, traffic out/in from /to network 192.168.x.x/16 is forwarded from intf2 this scenario works well.&lt;/P&gt;&lt;P&gt;but tomorrow i must add  new two routers on  2 new interfaces and i would have this new scenario:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; ISP ROUTER (.3 )  ISP ROUTER (.1)&lt;/P&gt;&lt;P&gt;                      \     I&lt;/P&gt;&lt;P&gt;        172.17.14.0/30 \    I    172.17.10.0/30&lt;/P&gt;&lt;P&gt;                        \   I&lt;/P&gt;&lt;P&gt;             INTF3(.2) \  I(OUTSIDE - .2)&lt;/P&gt;&lt;P&gt;(PARTNER)(.3)(172.17.13.0/29)INTF5(.2)PIX-INTF2(.2)(172.17.12.0/29)(.3)(PARTNER)&lt;/P&gt;&lt;P&gt;                     INSIDE (172.17.8.1/23)&lt;/P&gt;&lt;P&gt;                          I&lt;/P&gt;&lt;P&gt;                          I&lt;/P&gt;&lt;P&gt;                          I&lt;/P&gt;&lt;P&gt;                          I&lt;/P&gt;&lt;P&gt;                          I&lt;/P&gt;&lt;P&gt;                       MY LAN&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and this would have to be future situation:&lt;/P&gt;&lt;P&gt;the traffic that outcomes from 172.17.8.1/25 coming out from&lt;/P&gt;&lt;P&gt;172.17.10.1&lt;/P&gt;&lt;P&gt;the traffic that outcomes from 172.17.8.128/25 coming out from a new interface 172.17.14.3 except traffic out/in from 192.168.0.0/16 coming out from 172.17.12.3 traffic that outcomes from 172.17.9.1/25 coming out from interface&lt;/P&gt;&lt;P&gt;172.17.14.3 except traffic out/in 192.168.0.0/16 coming out from&lt;/P&gt;&lt;P&gt;172.17.13.3&lt;/P&gt;&lt;P&gt;traffic outcomes from 172.17.9.128/25 coming out from 172.17.10.1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;is it possible this scenario?&lt;/P&gt;&lt;P&gt;can you help me with this configuration?obbligatory i use NAT?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;sorry for my bad english...&lt;/P&gt;&lt;P&gt;thanks in advance&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Matt&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 09:19:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix515-multiple-interface-configuration/m-p/683977#M1054617</guid>
      <dc:creator>teteja1974</dc:creator>
      <dc:date>2020-02-21T09:19:01Z</dc:date>
    </item>
    <item>
      <title>Re: pix515 multiple interface configuration</title>
      <link>https://community.cisco.com/t5/network-security/pix515-multiple-interface-configuration/m-p/683978#M1054619</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Try these links:&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a00804619d8.shtml" target="_blank"&gt;http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a00804619d8.shtml&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a0080094763.shtml" target="_blank"&gt;http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a0080094763.shtml&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a0080094769.shtml" target="_blank"&gt;http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a0080094769.shtml&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 24 Nov 2006 17:46:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix515-multiple-interface-configuration/m-p/683978#M1054619</guid>
      <dc:creator>bbaley</dc:creator>
      <dc:date>2006-11-24T17:46:47Z</dc:date>
    </item>
  </channel>
</rss>

